MFA support
Connect your identity provider, such as Okta, Azure AD, Google Workspace, or OneLogin, and enforce MFA at the identity provider level. When SAML is active and enforced for your account, it becomes the only allowed login method for your domain. See SAML and Directory Sync for configuration details.Compliance considerations
Use these controls to support HIPAA and SOC 2 compliance requirements:- SAML SSO with identity provider-enforced MFA is the strongest option and is recommended for enterprise compliance
- Directory Sync (SCIM) automates user provisioning and deprovisioning based on your identity provider directory, supporting access lifecycle management requirements
- OAuth providers such as Google or GitHub satisfy most MFA requirements when MFA is enabled at the provider
Resources
SAML and Directory Sync
Configure SAML SSO and automated provisioning through SCIM.
Contact Blaxel
Request compliance reports or help with enterprise authentication.